Director of Technology - Governance Risk and Compliance
Archer
Job Overview
Who's the hiring manager?
Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Job Description
About Archer
Archer is an aerospace company based in San Jose, California, building an all-electric vertical takeoff and landing aircraft. Our mission is to advance sustainable air mobility with minimal noise and maximum efficiency.
Job Overview
The Director of Technology - Governance Risk and Compliance will design and develop Archer's Cybersecurity GRC program. Reporting to the Chief Information Security Officer, you will lead the design and implementation of enterprise governance, risk and compliance strategies aligned with multiple frameworks including NIST SP 800-171, CMMC Level 2, SOX, ITAR, and more.
Key Responsibilities
- Develop and execute a comprehensive Cyber GRC strategy.
- Lead the design and implementation of System Security Plans and POA&Ms.
- Establish and manage an enterprise-wide risk management program.
- Design and enforce a control framework based on multiple standards.
- Conduct regular compliance assessments and manage remediation strategies.
- Manage relationships with external auditors, assessors, and regulators.
- Develop and maintain comprehensive compliance documentation.
- Oversee third-party and vendor risk management processes.
- Drive compliance training and awareness programs across the organization.
- Provide executive-level reporting to the Board and C-suite.
Required Qualifications
- 8+ years in Technical Governance, Risk, Compliance or Information Security.
- Minimum 3 years in a director or senior manager role in GRC.
- Expert understanding of NIST SP 800-171, CMMC Level 2 and related frameworks.
- Hands-on experience with NIST CSF and CMMC compliance programs.
- Strong knowledge of SOX Section 404 and ITAR/EAR regulations.
- Proficiency in risk management methodologies and control design.
- Proven leadership, communication, and mentoring skills.
Preferred Qualifications
- Experience in Aerospace, Defense, or Federal Contracting industries.
- Hands-on experience with CMMC Level 2 assessments and FedRAMP authorizations.
- Industry certifications such as CISSP, CISM, CRISC, or similar.
- Experience with GRC platforms (Archer GRC, Audit Board, ServiceNow).
Compensation and Additional Information
This hybrid position targets a base pay between 219000 and 290000 annually. Actual compensation is determined based on experience and qualifications.
Archer is proud to be an Equal Opportunity employer committed to diversity and inclusivity. Reasonable accommodations are available for candidates with disabilities. Please contact Archer’s People Team at people@archer.com for assistance.
Key skills/competency
- GRC
- Compliance
- Risk Management
- NIST
- CMMC
- SOX
- ITAR
- Audit
- Cybersecurity
- Leadership
How to Get Hired at Archer
- Research Archer's culture: Study their mission, values, and recent news.
- Customize your resume: Highlight GRC and compliance leadership experience.
- Showcase certifications: Emphasize CISSP, CISM, or equivalent.
- Prepare for technical questions: Be ready for compliance frameworks specifics.
Frequently Asked Questions
Find answers to common questions about this job opportunity
Explore similar opportunities that match your background